Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

19 results about "Non-repudiation" patented technology

Non-repudiation refers to a situation where a statement's author cannot successfully dispute its authorship or the validity of an associated contract. The term is often seen in a legal setting when the authenticity of a signature is being challenged. In such an instance, the authenticity is being "repudiated".

Lightweight network security protection method for intelligent control terminal of Internet of Things

The invention provides a lightweight network security protection method for an intelligent control terminal of the Internet of Things, and aims to solve the problem of contradiction between security and real-time performance of resource-constrained equipment. According to the method, three core stages of equipment registration, bidirectional identity authentication and information encryption authentication are covered through layered architecture design. The method comprises the following steps: firstly, binding hardware characteristics and registration information by using physical unclonable functions (PUF) and HMAC to ensure that the identity of equipment is unique and credible; secondly, bidirectional identity authentication among the RTU, the LCS and the CCS is realized based on the PUF, the HMAC and the digital signature, and counterfeiting and replay attacks are prevented; and finally, symmetric encryption and asymmetric encryption are adopted to guarantee confidentiality, integrity and non-repudiation of communication data. According to the scheme, a timestamp and random number mechanism is introduced, the anti-attack ability is enhanced, the resource overhead and communication delay are optimized, the real-time requirement of the industrial Internet of Things is met, and the method is suitable for a distributed Internet of Things system in the fields of electric power, energy and the like and has the advantages of being efficient, safe and extensible.
Owner:CHUXIONG POWER SUPPLY BUREAU OF YUNNAN POWER GRID CO LTD

System and method for generating postage

ActiveUS12608712B2Postage metering systemFranking apparatusData integrityHardware security module
A postage generating system and method that allows for the generation of postage without the use of a PSD, while still maintaining the necessary data integrity and non-repudiation aspects. The cryptographic and accounting functions are performed separately when an indicium is generated and reconciled to ensure that every transaction is properly accounted for and funds are deducted from the user's account. The cryptographic functions for an indicium are performed utilizing a cloud-based Hardware Security Module (HSM). Transaction records for indicium generated by an HSM are stored in a database. The accounting is performed by a transaction server, separate and remote from the HSM, to make updates to the client's account to account for generated indicia. An Integrity Monitor Server monitors the consistency of the transactions, i.e., that every transaction performed by an HSM is properly accounted for by the transaction server and funds are deducted from the user's account.
Owner:PITNEY BOWERS INC

Multi-factor data certification

A module for processing certifying instances of digital data comprises a public key of the user and of certifying systems, wherein each of the certifying instances is associated with a storage address, with a user terminal, and with a non-repudiable ledger comprising an ordered list of elements. Each of the elements comprises: an attestation generated by one of the certifying systems, an attestation comprising a type of attestation, a document hash, a time stamp by the certifying system of the time at which the attestation was generated; an electronic signature of the attestation; a time stamp by the processing module of the time at which the element was added to the ordered list; and possibly a pointer to the document.
Owner:INKAN LINK

A method for access control with distinguished permissions based on attribute-based encryption

The application relates to a kind of attribute-based encryption-based differentiated permission access control methods, and belongs to the field of attribute cryptography and access control technology.The application adopts hybrid encryption mechanism, encrypts shared data using symmetric encryption system, and encrypts symmetric key using attribute-based encryption system, and only when the key associated attributes of a user meet the access control policy, the user can decrypt to obtain the symmetric key, and then decrypt to obtain the shared data plaintext using the symmetric key.In order to ensure the integrity and non-repudiation of shared data, the private key of the data owner is used for signing while the data owner generates the ciphertext.By using symmetric encryption mechanism and attribute-based encryption system, attribute-based, fine-grained permission control is realized, and the encryption and decryption efficiency of data is ensured.
Owner:BEIJING INST OF COMP TECH & APPL

Encryption operation method and system based on national cryptographic algorithm

The invention relates to the technical field of data encryption, in particular to an encryption operation method and system based on a national cryptographic algorithm. The method comprises the steps that an encryption request is received through a security service interface layer, the encryption request is analyzed to determine a security target and data attribute information, and the security target comprises one or more combinations of confidentiality, integrity and non-repudiation; an encryption algorithm is selected according to the security target and the data attribute information, and a corresponding key is acquired from a key management unit according to the encryption algorithm; encrypting to-be-encrypted data in the encryption request by using an encryption algorithm and a key to obtain encrypted data; and the encrypted data is returned to the requester through the security service interface layer, and a corresponding encryption operation log is generated and stored in the auditing module. According to the method and the device, personalized encryption requirements in different scenes can be met.
Owner:金品计算机科技(天津)有限公司

A secure token transaction unit, payment transaction sender, receiver and system and method for providing non-repudiation of payment transactions between the participants in an electronic payment transaction system

The present invention relates to a secure token transaction unit, for example a wallet, hosted in a service provider unit in an electronic payment transaction system, the electronic payment transaction system comprising a token reference register, the secure token transaction unit being configured to send tokens to or receive tokens from another token transaction unit within the electronic payment transaction system, the secure token transaction unit comprising a control module adapted to perform a double key control mechanism, whereby the double key control mechanism thereby enhances the security that a payment transaction cannot be tampered with, to enable a non-repudiable proof of the payment transaction.
Owner:GIESECKEDEVRIENT ADVANCE52 GMBH

Two-factor identity authentication method and system for power system

The invention provides a two-factor identity authentication method and system for a power system, and the method comprises the steps: carrying out the registration and login of power equipment through employing an SM2 algorithm; acquiring biological characteristics and identity information of an operator on the authenticated and logged-in power equipment, and generating an identifier ID for the operator; an operator registration request is initiated to a key generation center, an SM9 private key is obtained, and operator registration is completed; verifying the identity of the operator, and logging in the operator; performing operation authentication; the operation authentication comprises the following steps: generating a one-time random number r2; signing the operation details containing the r2 by using an SM9 private key to generate a signature S1; performing joint signature on the signatures S1 and r2 by using an SM2 private key to generate a signature S2; and the r2, the signature S1, the signature S2 and the operation information are sent to a server for verification and are stored in a database to form an audit record. In this way, identity verification of operators and non-repudiation tracing of operation behaviors are achieved.
Owner:NANJING GUODIAN NANZI POWER GRID AUTOMATION CO LTD

Method for realizing online contract signing based on mobile terminal electronic signature technology

The invention relates to a method for realizing online contract signing based on a mobile terminal electronic signature technology, and belongs to the field of data processing. In the method, a first electronic terminal determines a signed first electronic contract in response to a condition that a first user performs a signing operation on the electronic contract at first time, and the first user performs the signing operation on the first electronic contract at the first time as a first event; the first electronic terminal determines a credential of the first event, wherein the credential of the first event has uniqueness; and the first electronic terminal binds the credential of the first event with the signed first electronic contract and sends the bound credential and the signed first electronic contract to the secure storage device. Therefore, the credential with uniqueness is generated and bound with the electronic contract to be stored in the secure storage device, so that the non-repudiation and traceability of the signed event are ensured, that is, each contract has and only has one unique event credential. According to the method, the security and credibility of electronic contract signing are improved, and contract data are prevented from being tampered.
Owner:SHENZHEN MAIJIA BIOMEDICAL CO LTD

Identity authentication and control instruction encryption interaction method based on national cryptographic algorithm

The invention discloses an identity authentication and control instruction encryption interaction method based on a national secret algorithm. According to the invention, a high-security protection system is constructed through multi-level password technology fusion. SM2 asymmetric algorithm is adopted to carry out digital signature in identity authentication link, dynamic password and intelligent password key are combined to realize that private key is stored in hardware equipment in signature process of multi-factor authentication mechanism to avoid key leakage risk, and signature verification server carries out dual verification on signature value and certificate chain to ensure authenticity of user identity and non-repudiation. In a control instruction transmission stage, key derivative parameters are dynamically adjusted through time-varying factors to generate new sub-keys per hour, and the new sub-keys are matched with SM4 symmetric encryption and SM3 message authentication codes, so that timeliness of encryption keys and integrity protection of transmission data are realized, and even if the sub-keys at a certain moment are illegally acquired, instruction contents at other time periods cannot be decrypted, and effective reduction is realized. And the security risk caused by long-term use of the secret key is reduced.
Owner:GUIZHOU WUJIANG HYDROPOWER DEV

Apparatus and method for verifying false disavowal of recipient on basis of judgement of arbitrator in arbitrator-based quantum signature technique

The present disclosure relates to an apparatus and method for verifying a false disavowal of a recipient on the basis of a judgement of an arbitrator in an arbitrator-based quantum signature technique. Specifically, the present disclosure relates to an apparatus and method for a quantum signature technique using unique properties of quantum mechanics. The present disclosure relates to an apparatus and method wherein, in a quantum signature technique for non-repudiation, authentication, and forgery prevention of message information transmitted between a sender and a recipient, an arbitrator may intervene to determine a false disavowal of the recipient in a dispute situation where even though Bob, who is a verifier of signature information, receives correct message and signature information and no problem occurs in a verification process, Bob falsely claims to have received incorrect message and signature information from the sender and disavows the signature.
Owner:LG ELECTRONICS INC

Proxy re-signature-based cross-heterogeneous domain authentication method applied to industrial Internet of Things

The invention discloses a cross-heterogeneous domain authentication method based on proxy re-signature applied to industrial Internet of Things, which comprises the following steps: Internet of Things equipment generates an anonymous identity, and the anonymous identity is verified and stored by an authentication center; in the cross-domain authentication stage, the equipment performs cross-domain authentication through an anonymous identity, and an edge server performs proxy re-signature; and in the batch cross-domain authentication stage, the cross-domain authentication problem of multiple devices is solved, and the efficiency of the production process is improved. According to the method, the certificateless cryptosystem is adopted to generate the anonymous identity, a dynamic anonymous identity updating mechanism is introduced to ensure security identity verification and privacy protection of the equipment, a batch authentication strategy is used for reducing communication overhead and improving authentication efficiency, and formalized verification further proves the correctness of security certification. According to the method, privacy, non-linkability, non-repudiation and external aggression resistance are ensured, and more functions are provided under the condition of keeping similar overhead.
Owner:ANHUI UNIV

Lightweight certificateless digital signature method and system suitable for Internet of Things

The invention discloses a lightweight certificateless digital signature method and system suitable for the Internet of Things, and the method comprises the steps: carrying out the parameter initialization of a trust center KGC, constructing a public parameter in combination with a preset encryption mechanism, calculating a main public key and a main private key, receiving the user identity information of a user side, and carrying out the encryption of the public key and the main private key. The method comprises the following steps: performing partial private key and partial public key calculation on user identity information through a main private key, generating a partial secret key pair, feeding back the partial secret key pair to a user side, obtaining a user side random number, performing user partial public key and user partial private key calculation, combining the partial secret key pair to generate a complete secret key pair, and feeding back a complete public key of the complete secret key pair to a trust center KGC. The message of the user side is signed through the complete private key of the complete key pair and sent to the signature verification side, and the signature verification side obtains the public parameters, the main public key and the complete public key from the trust center KGC to conduct signature verification on the message. The method has the effects of improving the encryption operation efficiency of the low-energy-consumption Internet of Things equipment and perfecting the non-repudiation of the digital signature.
Owner:ELECTRIC POWER RES INST OF GUANGXI POWER GRID CO LTD

Deterministic ai agent liability firewall and insurance engine with hardware-enforced envelope binding and privacy-preserving risk pooling

PendingUS20260187731A1Term memoryPooling
A hardware-enforced AI liability containment system binds autonomous AI agent decisions to predefined liability envelopes retrieved from TEE-sealed policy stores within trusted execution environments (TEEs) comprising Intel SGX enclaves, AMD SEV-SNP protected VMs, or ARM TrustZone secure worlds, materially altering processor states to isolate all liability computations. Real-time risk exposure is computed using trust-state signals derived from TEE-resident hardware mechanisms comprising enclave-sealed monitoring registers, memory encryption engines, or attestation-based recalibration triggers, incorporating the exposure function f(d, delta, r, cap). Excess exposure is routed to insurance pools via zk-SNARK zero-knowledge proofs with arithmetic circuit structures generating constant-size cryptographic proofs verifiable within real-time operational latency constraints, replacing manual audit review with constant-size cryptographic verification operations executed in hardware-isolated environments. An ethical supervisor enforces behavioral guardrails, with symbiotic rollback circuits reverting agent state on cap breach. A provenance ledger uses append-only cryptographic hash chains bound to TEE attestation reports for non-repudiable verification of liability binding events and hardware environments, enabling per-decision insurable autonomous AI deployment at commercial scale.
Owner:BICKERSTAFF III GEORGE WILLIAM

Certificateless aggregation signcryption method for emergency communication, emergency communication system and computer readable storage medium

The invention discloses a certificateless aggregation signcryption method for emergency communication, an emergency communication system and a computer readable storage medium, and belongs to the technical field of information security. The signcryption method comprises the steps of system initialization, pseudonym generation, partial private key generation, secret key generation, signcryption, unsigncryption and batch verification. According to the method, the user identity, the public key, the message and the timestamp are strongly bound through the hash function, the public key replacement attack and the replay attack are effectively resisted, and the protection of the malicious key generation center is realized; meanwhile, a batch verification mechanism is introduced in the scheme, multiple ciphertexts can be verified at a time, and the calculation overhead is remarkably reduced; according to the scheme, on the premise that confidentiality, unforgeability, traceability, integrity, non-repudiation, mutual authentication and non-linkability are guaranteed, calculation and communication cost is low, and the method is particularly suitable for a post-disaster emergency communication scene composed of a detection unmanned aerial vehicle, a relay unmanned aerial vehicle and a ground station.
Owner:NANJING UNIV OF AERONAUTICS & ASTRONAUTICS

Verifiable and traceable quantum key database security system and implementation method thereof

The invention provides a verifiable and traceable quantum key database security system and an implementation method thereof, and the system comprises a quantum key and key management module which is used for generating a biophysical high-entropy key; the zero-knowledge verifiable authentication module is used for realizing zero-knowledge verification of an access subject identity and a strategy; the database encryption and access control module is used for performing database table-level, column-level and row-level encryption and access strategy execution, and realizing minimum authorization in combination with dynamic secret state distribution; the trusted execution and log account book module is used for constructing a tamper-proof event chain by using a Hash commitment chain and an evolution signature to realize a verifiable anti-counterfeiting account book VAL; and the cross-domain auditing and anchoring module is used for providing an independent verification and external time anchoring mechanism and realizing cross-organization traceable auditing. According to the method, a quantum key mechanism, zero-knowledge proof and a security log technology are fused, so that quantum security of access authentication and encrypted communication can be guaranteed, and verifiability, traceability and non-repudiation of database access behaviors can be realized.
Owner:STATE GRID ANHUI ELECTRIC POWER CO LTD +1

Modular artificial intelligence-driven architecture for dual-mode vehicle authentication, entitlement control, and secure transaction processing

The invention discloses a real-time dual authentication platform for secure vehicular and infrastructure-based payment processing. It integrates Radio Frequency Identification (RFID), License Plate Recognition (LPR), and biometric validation to deliver non-repudiable credential authentication and transaction authorization. An Augmented Reality (AR) interface renders credential overlays and entitlement controls via a mobile or in-vehicle application. A Universal Algorithm orchestrates subsystem operations with low-latency responsiveness, while embedded Artificial Intelligence (Al) and machine learning modules dynamically optimize transactional workflows based on contextual data. A decentralized, tamper-evident blockchain ledger anchors all transactions with smart contract enforcement and post-quantum cryptographic protection. The system's modular architecture supports scalable deployment across transportation, retail, logistics, aerospace, and sovereign infrastructures, enabling credential-governed access, auditability, and automation across hybrid networks. The technical field of the invention relates to secure credential authentication, entitlement arbitration, and compliance-governed transaction processing systems.
Owner:CANZONIERO CLARISSA MAE

System and method for verifiable, ethical arbitration and immutable auditing of autonomous decisions using constrained execution environments

A system and method for creating a verifiable, non-repudiable audit log of an autonomous system's ethical decision-making, solving the “black-box” problem for safety-critical applications. The system integrates a Trusted Execution Environment (TEE) with a Hierarchical Constraint Logic Processor (HCLP). The TEE's integrity is verified using a decentralized remote attestation (RA) state measurement incorporating a measurement from an intrinsic Physically Unclonable Function (PUF), which provides a hardware root of trust. The HCLP applies tiered constraints to select a control maneuver with the lowest calculated harm score from a set of potential outcomes. The system generates a novel, verifiable log entry that cryptographically binds the RA state measurement to the calculated harm scores of all rejected control maneuvers. This counterfactual log is immutably anchored into a Cryptographic Audit Log Service using a Merkle Tree, generating a non-repudiable Cryptographic Audit Certificate (CAC) for definitive, post-facto regulatory verification.
Owner:MITCHELL RICHARD JOSEPH

A report anti-counterfeiting system and method combining dynamic two-dimensional codes and electronic seals

The application discloses a report anti-forgery system and method combining dynamic two-dimensional codes and electronic seals, and particularly relates to the technical field of hoisting machinery inspection and detection, and the system comprises a data management module, a dynamic two-dimensional code generation module, a dynamic watermark generation module, an electronic seal module and a verification module. The system generates a dynamic two-dimensional code with uniqueness and timeliness by extracting key information of a report, generates a dynamic watermark on each page of the report, and realizes electronic sealing by using symmetric encryption technology and a digital certificate. During verification, the verification page can be jumped to by scanning the code through WeChat, or the code can be automatically verified through the WeChat service number menu. The scheme effectively solves the problems of weak anti-forgery capability, easy tampering and low verification efficiency of traditional reports, improves the anti-forgery capability of the report, simplifies the verification process, guarantees the integrity and non-repudiation of data, improves the public credibility of the inspection and detection report, and reduces the risk of safety accidents.
Owner:SHANGHAI RESEARCH INSTITUTE OF BUILDING SCIENCES CO LTD +1

Method and system for non-repudiation signing of data transmissions in time-critical applications

A method (100) for the non-repudiation transmission of signed data (40) between a sender (10) and a receiver (20) in time-critical applications is disclosed. The procedure comprises the provision (110) of data (30) to be transmitted by the sender (10), the signing (120) of the data (30) to be transmitted by means of a symmetric cryptography procedure using a symmetric key (50) to obtain symmetrically signed data (40), the transmission (130) of the symmetrically signed data (40) from the sender (10) to the receiver (20) via a transmission path (90), the signing (140) of the data (30) to be transmitted by means of an asymmetric cryptography procedure using a private key (61) of the sender (10) to obtain asymmetrically signed data (70), and the storage (150) of the asymmetrically signed data (70) in an audit memory (80).Furthermore, a corresponding device (200) for transmitting the signed data and a system (300) with such a device (200) are disclosed, wherein the device (200) is configured to carry out the disclosed method (100).
Owner:AIRBUS DEFENCE & SPACE GMBH